Page 1 of 1
How do you use Microsoft security portals alongside Ocean?
We're planning to bring more Microsoft 365 email-security workflows directly into Ocean, so you spend less time switching portals. 4 quick questions - about 2 minutes.
What's the best email to reach you at for follow-ups?
*
How often does your team open Microsoft security portals (Defender / Exchange admin) for email security work?
A
Daily
B
A few times a week
C
Weekly
D
A few times a month
E
Almost never
What do you go to Microsoft portals for today?
*
Viewing / releasing quarantined emails
Allow/block senders, domains, or URLs (Tenant Allow/Block List)
Message trace ("where did this email go?")
Submitting false positives/negatives to Microsoft
Tuning anti-spam / anti-phishing policies
Reviewing security alerts
Checking mailbox forwarding / inbox rules for suspicious activity
DKIM/SPF/DMARC configuration
Other
Which of these would you actually use if they lived inside Ocean? Pick up to 3.
*
One quarantine view — see and release both Ocean- and Microsoft-quarantined mail in one place
One-click allow/block that updates both Ocean and Microsoft lists
Message trace inside Ocean, combined with Ocean's own analysis timeline
Auto-submit confirmed false positives/negatives to Microsoft when Ocean's verdict changes
Visibility into your Microsoft policies and conflicts with Ocean ("Microsoft quarantines what Ocean would deliver")
Quarantine notification settings managed from Ocean (who gets notified, who can request release)
Email authentication health (DKIM/SPF/DMARC status and guided fixes)
Microsoft email alerts surfaced inside Ocean
Automatic hunting of suspicious inbox rules and mailbox forwarding (BEC persistence)
None of these
If you could do ONE thing in Ocean instead of a Microsoft portal, what would it be?
*
Submit